AP-VPN Deployment Scenarios
35.1 Scenario 1 - IPsec: Single Datacenter Deployment with No Redundancy
SCALANCE W1750D UI
534 Configuration Manual, 02/2018, C79000-G8976-C451-02
7. Create access rule for wired and
wireless authentication. In this exam-
ple, the rule permits all traffic.
(scalance)(config)# wlan access-rule wired-
port (scalance)(Access Rule "wired-port")#
rule any any match any any any permit
(scalance)(config)# wlan access-rule wire-
less-ssid
(scalance)(Access Rule "wireless-ssid")#
rule any any match any any any permit
See Configuring ACL Rules
for Network Services
NOTE: Ensure that you execute the commit apply command in the SCALANCE W CLI before saving the configuration and
propagating changes across the AP cluster.
AP-Connected Switch Configuration
Client VLANs defined in this example must be opened on the upstream switches in multiple
AP deployments, as client traffic from the slave to the master is tagged with the client VLAN.
For information on controller configuration, see Configuring a Controller for AP-VPN
Operations. Ensure that the upstream router is configured with a static route pointing to the
controller for the L3 VLAN.